楼主: sam.to
收起左侧

[病毒样本] mm.exe(第28次更新)已开新帖

[复制链接]
浪滔天
发表于 2008-9-7 18:55:01 | 显示全部楼层
0907-1712.rar  样本,卡巴报
eepoo
发表于 2008-9-7 20:24:29 | 显示全部楼层
SEP干掉
sam.to
 楼主| 发表于 2008-9-8 20:44:02 | 显示全部楼层
第3次更新
sam.to
 楼主| 发表于 2008-9-8 20:48:56 | 显示全部楼层
第4次更新
sam.to
 楼主| 发表于 2008-9-9 15:43:44 | 显示全部楼层
第5次更新
Kitman
发表于 2008-9-9 15:49:24 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Users\TOSHIBA\Downloads\0908-2047'
C:\Users\TOSHIBA\Downloads\0908-2047\1.exe3
    [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    [NOTE]      A backup was created as '492b2a73.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\0908-2047\3.exe3
    [DETECTION] Is the TR/Dldr.JKKF.14 Trojan
    [NOTE]      A backup was created as '4bae381c.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\0908-2047\9.exe3
    [DETECTION] Is the TR/Agent.AJVA.2 Trojan
    [NOTE]      A backup was created as '492b2a75.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!
C:\Users\TOSHIBA\Downloads\0908-2047\x.gif3
    [0] Archive type: RAR
    --> ᅰᅰᅥᆲ                                                                                                     .exe
      [DETECTION] Contains recognition pattern of the WORM/Autorun.LW.11 worm
    [NOTE]      A backup was created as '492d2a73.qua'  ( QUARANTINE )
    [NOTE]      The file was deleted!


End of the scan: 2008年9月9日  15:48
Used time: 00:02 Minute(s)

The scan has been done completely.

      1 Scanning directories
      5 Files were scanned
      4 viruses and/or unwanted programs were found
      0 Files were classified as suspicious:
      4 files were deleted
      0 files were repaired
      4 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      1 Files not concerned
      1 Archives were scanned
      0 Warnings
      4 Notes
Kitman
发表于 2008-9-9 15:49:42 | 显示全部楼层
File ID          Filename          Size (Byte)         Result
25130654          0908-1542.rar         244.43 KB         OK

A listing of files contained inside archives alongside their results can be found below:
File ID          Filename         Size (Byte)         Result
25130655          6.exe3          875 Byte          UNDER ANALYSIS
25130656          9.exe3          179.65 KB          UNDER ANALYSIS
25130657          mm.exe3          14.22 KB          UNDER ANALYSIS
25130658          #### ... .exe          13.9 KB          UNDER ANALYSIS
25130659          1.exe3          18.44 KB          MALWARE
25130660          3.exe3          24.08 KB          UNDER ANALYSIS
4860488          4.exe3          1.28 KB          KNOWN CLEAN
水晶
头像被屏蔽
发表于 2008-9-9 17:00:26 | 显示全部楼层
原帖由 tvuser2007 于 2008-9-6 16:02 发表
病毒        2008-09-06  16:02:30        C:\Documents and Settings\Administrator\桌面\mm.rar\mm.exe3        Win32.Troj.Downloader.if.58368        清除成功
毒霸太强了 简直变态
sam.to
 楼主| 发表于 2008-9-10 00:48:22 | 显示全部楼层
第6次更新

[ 本帖最后由 kato9096 于 2008-9-10 00:49 编辑 ]
mofunzone
发表于 2008-9-10 11:06:13 | 显示全部楼层
Starting the file scan:

Begin scan in 'C:\Users\Morgan\Desktop\0910-0046'
C:\Users\Morgan\Desktop\0910-0046\
  1.exe3
    [DETECTION] Is the TR/Crypt.XPACK.Gen Trojan
    [NOTE]      The file was deleted!
  3.exe3
    [DETECTION] Contains HEUR/Malware suspicious code
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '492c39bc.qua'!
  6.exe3
  9.exe3
    [DETECTION] Contains HEUR/Crypted suspicious code
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '4a9b51a5.qua'!
  mm.exe1
    [DETECTION] Contains HEUR/Crypted suspicious code
    [NOTE]      The detection was classified as suspicious.
    [NOTE]      The file was moved to '48f539fb.qua'!
  x.gif1
    [0] Archive type: RAR
    --> ᅰᅰᅥᆲ                                                                                                     .exe
      [DETECTION] Contains HEUR/Crypted suspicious code
    [NOTE]      The file was deleted!


End of the scan: 2008年9月9日  20:05
Used time: 00:05 Minute(s)

The scan has been done completely.

      1 Scanning directories
      7 Files were scanned
      1 viruses and/or unwanted programs were found
      4 Files were classified as suspicious:
      2 files were deleted
      0 files were repaired
      3 files were moved to quarantine
      0 files were renamed
      0 Files cannot be scanned
      2 Files not concerned
      1 Archives were scanned
      0 Warnings
      5 Notes
您需要登录后才可以回帖 登录 | 快速注册

本版积分规则

手机版|杀毒软件|软件论坛| 卡饭论坛

Copyright © KaFan  KaFan.cn All Rights Reserved.

Powered by Discuz! X3.4( 沪ICP备2020031077号-2 ) GMT+8, 2025-3-12 00:54 , Processed in 0.100969 second(s), 14 queries .

卡饭网所发布的一切软件、样本、工具、文章等仅限用于学习和研究,不得将上述内容用于商业或者其他非法用途,否则产生的一切后果自负,本站信息来自网络,版权争议问题与本站无关,您必须在下载后的24小时之内从您的电脑中彻底删除上述信息,如有问题请通过邮件与我们联系。

快速回复 客服 返回顶部 返回列表